CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

siemens

simatic_s7-1500_software_controller_firmware

7 known vulnerabilities · sorted by CVSS score

CVE-2020-15796
HIGH7.5

A vulnerability has been identified in SIMATIC ET 200SP Open Controller (incl. SIPLUS variants) (V20.8), SIMATIC S7-1500 Software Controller (V20.8). The web server of the affected products contains a vulnerability that could allow a remote attacker to trigger a denial-of-service condition by sending a specially crafted HTTP request.

siemens / simatic_et_200sp_open_controller_firmware+1
Network
Published Dec 14, 2020
CVE-2021-40365
HIGH7.5

Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.

siemens / simatic_s7-plcsim_advanced_firmware+95
Network
Published Dec 13, 2022
CVE-2023-28831
HIGH7.5

The OPC UA implementations (ANSI C and C++) in affected products contain an integer overflow vulnerability that could cause the application to run into an infinite loop during certificate validation. This could allow an unauthenticated remote attacker to create a denial of service condition by sending a specially crafted certificate.

siemens / simatic_cloud_connect_7_cc712_firmware+78
Network
Published Sep 12, 2023
CVE-2023-46156
HIGH7.5

Affected devices improperly handle specially crafted packets sent to port 102/tcp. This could allow an attacker to create a denial of service condition. A restart is needed to restore normal operations.

siemens / simatic_drive_controller_cpu_1504d_tf_firmware+75
Network
Published Dec 12, 2023
CVE-2021-44694
MEDIUM5.5

Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.

siemens / simatic_s7-plcsim_advanced_firmware+91
Network
Published Dec 13, 2022
CVE-2021-44693
MEDIUM4.9

Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.

siemens / simatic_s7-plcsim_advanced_firmware+95
Network
Published Dec 13, 2022
CVE-2021-44695
MEDIUM4.9

Affected devices don't process correctly certain special crafted packets sent to port 102/tcp, which could allow an attacker to cause a denial of service in the device.

siemens / simatic_s7-plcsim_advanced_firmware+95
Network
Published Dec 13, 2022